The difference between " user-defined classification" and "blacklist and whitelist" of the URL function.

Publication Date: 2012-09-26Views: 706Downloads: 0

Issue Description

Networking:
Intranet-- -- - usg2210 (v1r5) -- -- - public network
User description:
Several departments of the intranet want to limit the network permision of the employee. For example, the finance department can only access baidu, and unable to access other website. The production department could not access baidu, but can access other website; restrict the Internet behavior of all employees, but not to the leadership and so on.

How to do?
Use the traditional ACL? Of course it can not realize.
It can work by using the firewall URL filtering function. For example: 1. Use URL function of the "configure open special user all Internet permission and exemption IP" can realize the leadership behavior on the Internet without limit. 2. Use URL function of the "blacklist and whitelist" can realize the "restrict the Internet behavior to all employees". 3. The "blacklist and whitelist" can’t realize the demands: " the finance department can only access baidu, and unable to access other website. The production department could not access baidu ", but URL function "user-defined classification" can.
The network segment of finance department is 192.168.45.0/24 and the network segment of production department is 192.3168.46.0/24

Suggestions

• The "blacklist and whitelist" can’t realize the demands: " the finance department can only access baidu, and unable to access other website. The production department could not access baidu ", but the URL function "user-defined classification" can.